
Please try another search
A mere phone call was enough to set off a cybersecurity calamity for Las Vegas' MGM Resorts, shedding light on vishing as an increasingly potent threat.
This form of social engineering involves calling victims to extract sensitive information and system credentials, which can be further used as a launch pad to set up more complicated attacks.
In this case, it appears that the hackers found an employee’s information on LinkedIn and impersonated them in a call to MGM’s IT help desk to obtain credentials to access and infect the systems," according to Vox.
The alleged culprit behind this incident is the hacking group Scattered Spider, specialists in ‘vishing’ - voice phishing.
pic.twitter.com/nxIweGInsB— MGM Resorts (@MGMResortsIntl) September 11, 2023
What happened?
MGM Resorts revealed last week that a ‘cybersecurity issue’ had disrupted several of its systems, forcing the company into manual mode to sustain operations.
Guests experienced hours-long queues for physical room keys and received handwritten receipts for casino winnings.
MGM Resorts has not officially commented beyond vague Twitter posts acknowledging a "cybersecurity issue".
To mitigate the attack, MGM shut down some of its internal networks, resulting in disruption of services for up to five consecutive days.
During this period, another Las Vegas Casino, Ceasers also paid a ransom of $15 million to a cybercrime group that managed to steal social security numbers and licence information from several of its customers from the company's database.
Furthermore, sources have also confirmed to CNBC that a similar ransom demand was made to MGM as well.
Are you sure you want to block %USER_NAME%?
By doing so, you and %USER_NAME% will not be able to see any of each other's Investing.com's posts.
%USER_NAME% was successfully added to your Block List
Since you’ve just unblocked this person, you must wait 48 hours before renewing the block.
I feel that this comment is:
Thank You!
Your report has been sent to our moderators for review
Add a Comment
We encourage you to use comments to engage with users, share your perspective and ask questions of authors and each other. However, in order to maintain the high level of discourse we’ve all come to value and expect, please keep the following criteria in mind:
Perpetrators of spam or abuse will be deleted from the site and prohibited from future registration at Investing.com’s discretion.